Forensic and Incident Response Engineer Job at Peraton, Portland, OR

VGU1aXRyeTRnRU5xZDFLb0ROQXV4Z1N4Ync9PQ==
  • Peraton
  • Portland, OR

Job Description

Program Overview

About The Role

**Position is Contingent Upon Award**

Peraton seeks innovative professionals who thrive in mission-critical environments and are passionate about protecting our national critical infrastructure. This is your chance to make an impact on one of the nation’s vital organizations, working alongside leaders in cybersecurity engineering, operations, forensics, threat analysis, data science, and systems integration.

Join Peraton in supporting a large critical infrastructure operator to defend its corporate and operations networks from nation-state attacks, ensure the confidentiality, integrity, and availability of its systems and operations infrastructure, and comply with federal and industry cybersecurity regulation. As a forensic and incident response engineer working alongside a state of the art 24-hour Cybersecurity Operations Center (CSOC), you will be responsible for detecting, investigating, and responding to cybersecurity incidents while preserving evidence and supporting root-cause analysis. This role leads technical incident response activities, conducts digital forensic analysis, and improves organizational readiness against cyber threats.

Primary Responsibilities:

The Forensic and Incident Response Engineer will be responsible to :

  • Lead technical response to security incidents, including containment, eradication, and recovery
  • Perform digital forensic analysis on endpoints, servers, applications, network traffic, and cloud environments using forensically sound procedures to identify network / computer intrusion evidence and identifies perpetrators
  • Examine any electronic device that may hold evidence that could be used in a court of law and
  • Gather, handle and store evidence.
  • Perform a variety of forensic and electronic discovery services, including digital evidence preservation, forensic analysis, data recovery, tape recovery, electronic mail extraction, and database examination
  • Collect, preserve, and analyze evidence in accordance with forensic best practices and legal requirements observing proper evidence custody and control procedures, document procedure and findings in a manner suitable for courtroom presentation and prepare comprehensive written notes and reports.
  • Investigate malware, intrusions, unauthorized access, and data infiltration and exfiltration events
  • Analyze logs, memory, disk images, and network captures to determine attack scope and impact
  • Develop timelines, root-cause analysis, and incident reports for both technical and executive audiences
  • Support threat hunting and detection engineering efforts using forensic findings
  • Collaborate with the CSOC, engineering, legal, and compliance teams during incidents
  • Participate in on-call or surge incident response rotations

Additional Responsibilities:

  • Assist with development and maintenance of incident response playbooks and procedures
  • Support security tooling evaluations and forensic lab improvements
  • Participate in tabletop exercises and readiness testing
  • Contribute to security awareness or training efforts using incident lessons learned
  • Maintain forensic documentation, case notes, and evidence records

Qualifications

Required:

  • U.S. Citizenship Required
  • Must have the ability to obtain / maintain a DOE L Level or DOE Secret clearance
  • Degree in computer science, engineering, cybersecurity, information technology, digital forensics, homeland security, or related field
  • Minimum of 12 years with BS/BA; Minimum of 10 years with MS/MA; Minimum of 7 years with Ph.D.
  • Experience in cybersecurity, incident response, or digital forensics
  • Strong analytical and problem-solving skills
  • Ability to explain complex findings to non-technical stakeholders
  • High integrity and discretion, with strict adherence to evidence handling and chain of custody requirements.
  • Proficiency with industry-standard forensic and Incident Response tools
  • Proficiency of TCP/UDP packet capture and analysis
  • Strong experience in incident response methodologies and lifecycle management
  • Hands-on digital forensics experience across a variety of industry-standard operating systems
  • Ability to work effectively during high-stress incidents
  • Understanding of industry cybersecurity standards such as FISMA, NIST 800 series, ISO 27001 and regulatory compliance requirements
  • Familiarity with MITRE ATT&CK framework

Desired:

  • Hold technical and/or cybersecurity certification such as GIAC GSEC, GIAC GCIH, CISA SSCP, CompTIA Security+
  • A master’s degree in computer science, engineering, cybersecurity, information technology, or related field
  • Demonstrated experience leading or owning incident investigations
  • Hands-on experience reverse-engineering malware

SCA / Union / Intern Rate or Range

Details

Target Salary Range: $135,000 - $216,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual’s experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.

Benefits Statement: Peraton offers eligible employees a variety of benefits including medical, dental, vision, life, health savings account, short/long term disability, EAP, parental leave, 401(k), paid time off (PTO) for vacation, and company paid holidays. A full listing of available benefits can be viewed at

Application Duration Statement: The application period for the job is estimated to be 30 days from the job posting date. However, this timeline may be shortened or extended depending on business needs and the availability of qualified candidates. 

EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.

Job Tags

Contract work, Temporary work, Internship, Shift work

Similar Jobs

Med Source Consultants

Gastroenterologist - 3067 Job at Med Source Consultants

 ...Gastroenterologist 3067 Gastroentrerologist Needed Dynamic Physician Led Practice Join a collaborative, dynamic, physician-led practice where you can learn, grow, and excel in providing integrated, multidisciplinary, patient centered care. * Seeking board... 

Alternative HR LLC

Armed Security Guard Job at Alternative HR LLC

 ...potential combative situations, ~ High level of integrity required for handling sensitive/confidential information. ~ Must be able to work independently and be self-motivated to perform all aspects of the job at all times. ~ Complete incident reports and document daily... 

Aequor

Laboratory Support Job at Aequor

Remote: No Full time or part time: Full time Shift: 8 hours/day, 5 days/week Hours: 8am-5pm BASIC PURPOSE: Performs customary scientific/lab duties. Participate in the execution of routine experiments with assistance or independently. Performs all work in conformance with...

Wingstop

Restaurant General Manager Job at Wingstop

 ...JOB SUMMARY AND SCOPE The General Manager has ultimate accountability for the successful operation, growth and prosperity of an assigned National Franchised Restaurant. He/she provides leadership and direction to ensure the restaurant operates in accordance with all... 

Allmed Staffing Inc

Interior Designer B (Mid-Level) - VA Medical Center Job at Allmed Staffing Inc

 ...Interior Designer B (Mid-Level) VA Medical Center Title: Interior Designer B Pay: $40 to...  ...Location: San Francisco, CA Schedule: Part-time, 20 to 25 hours per week Start Date:...  ...within a VA facility. You will assist with layouts, documentation, and coordination...